Записи hmailserver
5 опубликованных записей вендора hmailserver.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-321 Use of Hard-coded Cryptographic Key2
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-20 Improper Input Validation1
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
23Наблюдать | CVE-2013-5571Эксплойта нет | HMailServer 5.3.x and prior: Memory Corruption which could cause DOShmailserver · hmailserver · CWE-119 | Средняя5,9 | — | 0,9 % | 7 янв. 2020 г. |
20Наблюдать | CVE-2025-52372Эксплойта нет | An issue in hMailServer v.5.8.6 allows a local attacker to obtain sensitive information via the hmailserver/installation/hMailServerInnoExtehmailserver · hmailserver · CWE-200 | Средняя5,1 | — | 0,2 % | 21 июл. 2025 г. |
18Наблюдать | CVE-2008-3676Proof of concept | Unspecified vulnerability in the IMAP server in hMailServer 4.4.1 allows remote authenticated users to cause a denial of service (resource ehmailserver · hmailserver · CWE-20 | Средняя4,3 | — | 2,8 % | 14 авг. 2008 г. |
18Наблюдать | CVE-2025-52373Эксплойта нет | Use of hardcoded cryptographic key in BlowFish.cpp in hMailServer 5.8.6 and 5.6.9-beta allows attacker to decrypt passwords used in databasehmailserver · hmailserver · CWE-321 | Средняя4,6 | — | 0,3 % | 21 июл. 2025 г. |
18Наблюдать | CVE-2025-52374Эксплойта нет | Use of hardcoded cryptographic key in Encryption.cs in hMailServer 5.8.6 and 5.6.9-beta allows attacker to decrypt passwords to other serverhmailserver · hmailserver · CWE-321 | Средняя4,6 | — | 0,2 % | 21 июл. 2025 г. |
- CVE-2013-557123Наблюдать
HMailServer 5.3.x and prior: Memory Corruption which could cause DOS
СредняяCVSS 5,9Эксплойта нетEPSS 1 %hmailserver · hmailserver7 янв. 2020 г.
- CVE-2025-5237220Наблюдать
An issue in hMailServer v.5.8.6 allows a local attacker to obtain sensitive information via the hmailserver/installation/hMailServerInnoExte
СредняяCVSS 5,1Эксплойта нетEPSS 0 %hmailserver · hmailserver21 июл. 2025 г.
- CVE-2008-367618Наблюдать
Unspecified vulnerability in the IMAP server in hMailServer 4.4.1 allows remote authenticated users to cause a denial of service (resource e
СредняяCVSS 4,3Proof of conceptEPSS 3 %hmailserver · hmailserver14 авг. 2008 г.
- CVE-2025-5237318Наблюдать
Use of hardcoded cryptographic key in BlowFish.cpp in hMailServer 5.8.6 and 5.6.9-beta allows attacker to decrypt passwords used in database
СредняяCVSS 4,6Эксплойта нетEPSS 0 %hmailserver · hmailserver21 июл. 2025 г.
- CVE-2025-5237418Наблюдать
Use of hardcoded cryptographic key in Encryption.cs in hMailServer 5.8.6 and 5.6.9-beta allows attacker to decrypt passwords to other server
СредняяCVSS 4,6Эксплойта нетEPSS 0 %hmailserver · hmailserver21 июл. 2025 г.